← Back to home
ICSA-25-219-01  ·  Published 2025-08-07  ·  View on CISA ICS-CERT ↗

Delta Electronics DIAView

CVSS 9.8 CRITICAL

Risk Summary

Successful exploitation of this vulnerability may allow a remote attacker to read or write files on the affected device.

CVEs (1)

Remediations

  • Delta Electronics recommends users update to DIAView v4.3.0 or later.
  • For more information, see Delta Electronics advisory Delta-PCSA-2025-00010.
  • Delta Electronics offers users the following general recommendations:
  • Do not click on untrusted Internet links or open unsolicited attachments in emails.
  • Avoid exposing control systems and equipment to the Internet.
  • Place control system networks and remote devices behind firewalls, and isolate them from the business network.
  • When remote access is required, use a secure access method, such as a virtual private network (VPN).
  • If you have any product-related support concerns, contact Delta via the portal page for any information or materials you may require.

Affected Vendors

Delta Electronics

Affected Products (1)

Delta Electronics · DIAView 4.2.0.0

Affected Sectors

Chemical, Commercial Facilities, Critical Manufacturing, Energy, Transportation Systems, Water and Wastewater Systems

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more